GhostSiege Privacy Cookies Terms Legal notice

Legal

Privacy Policy

Last updated: 1 September 2026

This policy explains how personal data is processed when you visit and play GhostSiege at ghostsiege.com. GhostSiege can be played without creating an account. Optional game analytics remains disabled until you consent.

1. Controller

Hasanović Jusufa
Juke 57
71000 Sarajevo
Bosnia and Herzegovina
privacy@ghostsiege.com

The person listed above is the controller for the processing described in this policy. GhostSiege is a private, non-commercial hobby project; see the Legal Notice for full operator details.

The controller is established outside the European Economic Area. Because GhostSiege is offered to players in the EEA, this processing falls under Article 3(2) GDPR and is carried out in accordance with the GDPR. The game itself runs on a server located in Germany.

2. Data we process

ActivityDataPurpose and legal basisRetention
Website delivery and securityIP address, request time, requested path, user agent and technical server data.Delivering and protecting the service, diagnosing faults and preventing abuse. Legitimate interests under Article 6(1)(f) GDPR.Server log files are rotated daily and deleted after 14 days.
Local game dataPrivacy choice, language, player name, hero, achievements, settings and game progression stored in your browser.Providing the features you request. Article 6(1)(b) GDPR and storage strictly necessary for the requested service.Until you clear the site's storage in your browser.
LeaderboardChosen player name, score, survival time, kills, level, submission time and a hashed IP address used for rate limiting and moderation.Operating the leaderboard at your request and protecting it from abuse. Articles 6(1)(b) and 6(1)(f) GDPR.Leaderboard entries remain while the leaderboard operates, unless removed earlier following a valid request or moderation decision.
Optional game analyticsPseudonymous player ID, a pseudonymous session identifier that expires after 30 minutes of inactivity, visits, referrer host, campaign parameters contained in the link you followed (utm_source, utm_medium, utm_campaign, utm_content, utm_term, and the name — never the value — of an advertising click identifier such as gclid or fbclid), the page you entered on, how long a page stayed open, a two-letter country code derived from a header supplied by our hosting provider or estimated from your time zone, approximate screen size, language, time zone, browser/device information, gameplay events, run statistics and technical error details. Security systems may add a hashed IP address.Understanding and improving GhostSiege, balancing gameplay and fixing errors. Consent under Article 6(1)(a) GDPR.Event records: up to 180 days. Visit records: up to 365 days. Aggregated player and run records are retained while needed for game operation and analysis, then deleted or anonymised.
Support purchases (skins and VIP)An order code you paste into the payment message, the requested product, the amount, a licence key stored in your browser, the payment amount, currency, supporter name and payment note supplied by Buy Me a Coffee, plus a hashed IP address used for rate limiting.Providing the purchase you requested, matching your payment to it, restoring purchases on your other devices and preventing abuse. Articles 6(1)(b) and 6(1)(f) GDPR.Order and licence records are kept while the purchase remains valid and for as long as commercial and tax record-keeping duties require. Raw payment notifications are kept for reconciliation.
Feedback and bug reportsThe message you write, the category and optional star rating, an optional email address if you choose to give one, and — when you leave the box ticked — the state of your run (wave, level, hero, score, playing time, weapons, items, frame rate) together with browser, operating system, device type, screen size, language, the page address and the app version. A hashed IP address is stored for rate limiting. If you have accepted game analytics, the pseudonymous player and run identifiers are attached as well; without that consent they are not.Receiving and answering the report you sent us, reproducing and fixing faults, and preventing abuse of the form. Articles 6(1)(b) and 6(1)(f) GDPR; the optional email address is processed on the basis of your consent under Article 6(1)(a) GDPR.Until the report has been dealt with; handled reports are deleted during clean-up, at the latest after 365 days.
Contact requestsYour contact details and the content of your request.Responding to you and handling legal requests. Articles 6(1)(b), 6(1)(c) or 6(1)(f) GDPR, depending on the request.Until the request is resolved and applicable documentation periods have expired.

Feedback form. The feedback and bug-report form inside the game is entirely voluntary. Before sending, you can see exactly which technical details will be attached and can switch that off; the email field is optional and is used only to reply to that one report, never for a newsletter. Please do not include personal information in the message text beyond what is needed to describe the problem.

Please do not use your real name or include personal information in your public player name. Leaderboard names and scores can be viewed by other visitors.

3. Analytics choice

On your first visit, analytics is off. If you accept game analytics, GhostSiege creates a random pseudonymous identifier in local storage and sends the data described above to the GhostSiege server. You can withdraw consent at any time through . Withdrawing consent stops future collection and removes the analytics identifier from your browser. It does not automatically erase information already stored on the server; you may request deletion as described below.

4. Advertising

GhostSiege shows its own advertising. The creatives are stored on the GhostSiege server, are delivered by it and are marked as advertising. No advertising script, SDK, cookie or advertising identifier from a third party is loaded, no profile is built and no data about you is passed to an advertiser. GhostSiege counts how often an ad was displayed, clicked or watched as a rewarded ad, aggregated per ad and per day only — these counters contain no information about individual visitors. Because this processing needs neither access to your device storage nor personal data, it does not depend on the advertising choice in the privacy controls.

Clicking an ad opens the advertiser’s website in a new tab. GhostSiege registers the click on its own server first and then forwards you without a referrer, so the advertiser does not learn which page you came from. What happens on the advertiser’s site is governed by their own privacy policy.

Rewarded advertising. After dying you may choose to watch an advertisement in order to continue the run at the place where you fell. The offer is voluntary, names the reward beforehand and can be declined; declining ends the run in the usual way and costs nothing. To make sure the reward is granted only once per run, the server stores a random one-time token together with a run identifier, the issue time and a shortened, non-reversible hash of your IP address for at most 20 minutes, then deletes it.

Embedded video and pages. A rewarded advertisement can consist of a video (for example from YouTube) or of the advertiser’s own web page shown in a frame. Unlike our image advertising, this content is loaded from a server we do not operate: that provider receives your IP address, the address of the page you are on, and may set cookies or read existing ones. We have no influence on that processing and no access to the resulting data; the provider’s own privacy policy applies. By default such an advertisement starts immediately when you choose to watch it, so the provider is contacted as soon as the frame is inserted. The operator can switch GhostSiege to ask first: with that setting enabled, the provider is named and nothing is loaded until you agree, your answer is stored locally under gs_embed_ok_v1, and declining costs only the reward. In both cases the advertisement is voluntary — it appears only after you actively choose to watch one, and the rest of the game works without it. YouTube embeds use youtube-nocookie.com, which limits but does not eliminate this processing once the video plays. GhostSiege does not receive any viewing data back from the provider.

No third-party advertising provider is active. Before an external advertising network is enabled, this policy and the Cookie & Storage Policy will be updated with the provider, purposes, recipients, retention and international-transfer information, and, where required, advertising will use a certified consent management platform and request a new, provider-specific choice.

5. Purchases and support

Purchases are currently switched off. No payment provider is contacted and no payment data is processed at this time. The rest of this section describes how optional purchases will work once they are enabled.

GhostSiege can be played in full without paying. Optional purchases — hero skins and the one-time VIP upgrade that removes advertising — are handled through Buy Me a Coffee. There is no GhostSiege account: when you start a purchase, the GhostSiege server issues a short order code that you paste into the message field on the payment page. Buy Me a Coffee notifies the GhostSiege server about the payment, the server matches the order code and issues a licence key that is stored in your browser and can be entered on your other devices.

Your payment details are entered on Buy Me a Coffee and are never received by GhostSiege. GhostSiege does receive the payment amount, currency, the supporter name and the message text that Buy Me a Coffee includes in its notification, and stores that notification for reconciliation. Please do not put personal information into the payment message beyond the order code.

Before purchases are switched on, this section will be completed with the payment provider's legal name, country, data-protection role and privacy policy link, with the safeguard applied to any processing outside the European Economic Area, and with the terms of sale including the statutory right of withdrawal for digital content.

6. Recipients and processors

Data is processed on the GhostSiege server and by the hosting provider used to operate ghostsiege.com. Access to administrative data is restricted to authorised operators. Data is disclosed to public authorities only where legally required.

The server is hosted by netcup GmbH, Daimlerstraße 25, 76185 Karlsruhe, Germany, acting as a processor on the controller's instructions. Its privacy information is available at netcup.com. No content delivery network, error-monitoring service or external analytics provider is used. There is no separate email provider for game data; enquiries sent to the addresses in this policy are handled in the operator's own mailbox.

7. International transfers

If a provider processes personal data outside the European Economic Area, GhostSiege will use an applicable adequacy decision or appropriate safeguards such as the European Commission's Standard Contractual Clauses, and will describe the relevant transfer here before that provider is activated.

8. Your rights

Subject to the conditions of the GDPR, you may request access, rectification, erasure, restriction, data portability and objection. Where processing relies on consent, you may withdraw that consent at any time without affecting earlier lawful processing. If you are in the European Economic Area, you may lodge a complaint with the supervisory authority of the country where you live or work. You may also contact the Personal Data Protection Agency of Bosnia and Herzegovina, which supervises the operator's place of establishment.

To exercise your rights, contact the privacy email listed under “Controller”. We may need enough information to verify that a leaderboard entry or pseudonymous player ID belongs to you.

9. Security

GhostSiege uses access controls, rate limiting, pseudonymous identifiers and hashed IP values for operational analytics and abuse prevention. No internet service can guarantee absolute security.

10. Children

GhostSiege is not designed to collect unnecessary personal data from children. Players who cannot legally provide consent themselves should use optional analytics or future personalised advertising only with permission from a parent or legal guardian. Rejecting optional processing does not prevent normal gameplay.

11. Changes

We may update this policy when GhostSiege, its providers or legal requirements change. The current version and update date will remain available on this page. If a change materially affects consent-based processing, we will request a new choice where required.

© 2026 GhostSiegePlay GhostSiegeLegal notice